Threats Tagged 'cve-2026-61588'
View all threats tagged with 'cve-2026-61588'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2026-61588'
Click on any threat for detailed analysis and mitigation recommendations
0 A vulnerability in djust prior to version 1.0.7 allows exposure of sensitive information to unauthorized actors. When a Django Model instance is assigned to a public view attribute, djust serialized the entire model object to the client without filtering sensitive fields such as password hashes, privilege flags, tokens, and other personally identifiable information (PII). This could lead to unintended leakage of credentials and sensitive data. The issue is fixed in version 1.0.7 by implementing a secure-by-default sensitive-field denylist during serialization. Until patched, a workaround is to keep Model instances on private attributes and expose only necessary fields. Join the discussion | CVE Database V5 | 09/16/2026, 22:04:03 UTC Added: 09/16/2026, 22:32:16 UTC |
Showing 1 to 1 of 1 result